Apache
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa37dd2db492eb743ebbd7f0c0cdef2a19a5e28dcda
GraphQL introspection enabled at /graphql Types: 55 (by kind: ENUM: 10, INPUT_OBJECT: 6, OBJECT: 33, SCALAR: 6) Operations: - Query: Query | fields: me, product, products, shopInfo, shoppingCart - Mutation: Mutation | fields: addToCart, loginWeb, removeFromCart, removeFromWaitlist, updateCartQuantity Directives: deprecated, include, skip (total: 3)
Open service 151.101.130.132:443 · shoproxymoxy.com
2026-01-09 20:44
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset=UTF-8 Server: Apache Cache-Control: no-cache, private Content-Security-Policy-Report-Only: default-src 'self'; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; img-src * data: blob: android-webview-video-poster:; font-src * data:; connect-src * blob:; media-src * blob:; frame-src * blob: navigate:; worker-src 'self' blob:; frame-ancestors *; form-action 'self' www.facebook.com tr.snapchat.com pos.commentsold.com; object-src 'none'; manifest-src *; child-src 'self' blob:; report-uri https://o43862.ingest.sentry.io/api/239693/security/?sentry_key=deb2fc6b7d104f7ea6241356c26c14d0 x-robots-tag: all X-Request-Id: 8844d16f-739a-4a7d-a9de-e1bf95ac6aed Set-Cookie: laravel_session=eyJpdiI6ImEzdVk2VWtoTHV6ME9raUlrTUdpK3c9PSIsInZhbHVlIjoibjFRbGNFS3RvL2tZVk51bnNBWWVQNVRNVWRPSTJFNWV4UnpIVTBNMGtDK2o5QjlGVk5mY0ZXaTBpWXBCZy9jWWZrYitiYWtYTEUxVkdpWUxtOEU3cWJ1eHppZSsxcGVYSWNyTXhUTUxYQmd1QUZtSkRkeWJUV1JRdytxMVREYVciLCJtYWMiOiI2NDI0NzI4ODNkNWNmNTllOGFlMjJmZGUzYmZiMjVjNGFiMmRkYjhkYTI2Y2JlMGRkNzM4MGJmNTQ3ZWRjYjY1IiwidGFnIjoiIn0%3D; expires=Tue, 10 Mar 2026 20:44:41 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Set-Cookie: Lgn7413dsIy7UgLdPXSlDumFApjDkAgIHQq9KIqQ=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%3D; expires=Tue, 10 Mar 2026 20:44:41 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Access-Control-Allow-Origin: * Access-Control-Allow-Methods: POST, GET, OPTIONS, DELETE, PUT Access-Control-Max-Age: 1000 Access-Control-Allow-Headers: x-requested-with, Content-Type, origin, authorization, accept, client-security-token, Accept-Encoding Accept-Ranges: bytes Via: 1.1 varnish, 1.1 varnish X-Cacheable: NO:Set-Cookie Date: Fri, 09 Jan 2026 20:44:41 GMT X-Served-By: cache-chi-klot8100044-CHI, cache-vie6322-VIE X-Cache: MISS, MISS X-Cache-Hits: 0, 0 X-Timer: S1767991481.161443,VS0,VE340 Vary: Accept-Encoding Strict-Transport-Security: max-age=900 transfer-encoding: chunked
Open service 151.101.130.132:443 · shoproxymoxy.com
2026-01-03 00:22
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset=UTF-8 Server: Apache Cache-Control: no-cache, private Content-Security-Policy-Report-Only: default-src 'self'; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; img-src * data: blob: android-webview-video-poster:; font-src * data:; connect-src * blob:; media-src * blob:; frame-src * blob: navigate:; worker-src 'self' blob:; frame-ancestors *; form-action 'self' www.facebook.com tr.snapchat.com pos.commentsold.com; object-src 'none'; manifest-src *; child-src 'self' blob:; report-uri https://o43862.ingest.sentry.io/api/239693/security/?sentry_key=deb2fc6b7d104f7ea6241356c26c14d0 x-robots-tag: all X-Request-Id: 7985fa01-e092-4348-b8ae-0d9b0e1287a6 Set-Cookie: laravel_session=eyJpdiI6IjJNZG5wbmozT0NXUThmTW4vNWQvbVE9PSIsInZhbHVlIjoiWVNXczdIWnNXZzBJTWZPMzB4OTBIRmUxMzFWNFpNd0ZpcDFBUEg4WXJFNXkrL1hncjJUUnA5YUdGTFd3ajJaWnZ5bDYvSXg3dU1zTWNrbFBQTGx4OHI5USthNlpQQ3pWaFhTdG9lRitlRWdReGM5di82YUsyeTllQzJyNk16ck0iLCJtYWMiOiI2NzI5YzM0OGM5N2JiY2EwYTRhNDdiMTU3NGIzZGJjMmU3NzRjOWZhOTllMWRiYzBlZDlkYWU2YmQyYTNkYzIyIiwidGFnIjoiIn0%3D; expires=Wed, 04 Mar 2026 00:22:36 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Set-Cookie: mjlieXjeWLVHBKLEaMnvzehEFDDS8WMvbkarOCJY=eyJpdiI6Im8waFNXZHRwK1lBbkJpQnBKR1Yra3c9PSIsInZhbHVlIjoiakFRUW1Ja1NTYnEyRWFYQjc2ZURuT1ZIOVNLYSszcjZtSVlxOXJRTUx1Slo5SllwbU0raFh4L1JibVpIbVE2aFJlYWxJV0FOQWs5OWxscDZLSSs5a3hWUVB3V3M5NEoxbGxMV2JLeUlSeFFZQk1WblNLWm5WTDRxUzZ0eElRcnNFUnl4eU45UXFicU9VYjdZUkRwS0dhODc5eXdmZXZuOXZVVm5yR05UL2w3SU94SGMwa1N2U3c4TG5aUnpjU3o1ZTNDbVVsV0tlSWZWSWpxQnZpeU4vOGJBQ1FKL3hhMWJoamVzTXhoS0VjWUJFVTRMOTh2eThoZk1wakdSQjZyMFVvbVAxaEZ5WGtxMWpLVkI2QU95V1NVMDVHb29reGl0ZEswR04wenNacjBIZ093TkRuc3p6eVhkdHp4cTBRV2FLQ0hOblkyeXpWUjFLMkNZRFlLcEs0UTFtMGxONlJpTWduM1FUTkJRbUtpOUsvdzlZbVRGL1lwRFVUQUtCNXBvaEM2M2d3U3ZJTVZic2VjNXJHMHJRQit1eWNWMjY0dHVFMk8raXhpdGRtbUhId3Rid0VreksxcFlZQWxSSVpLUlg4UUhRcnRpN0hCcEhsUlFYUVFOMC91bVJBdkdyeVBQU1FYVFNzcjVGYjk5QWN1clAzREZIQzJSVTNVeGZXM28iLCJtYWMiOiI4YmY1MjRjZGExNzVhYjI4YzY1MDQ3NzQ3ODg0ODhkMDBiYTNjYTU5NDQ3ZDQzNjRlYzI5N2UxZWU5MDcwZmY2IiwidGFnIjoiIn0%3D; expires=Wed, 04 Mar 2026 00:22:36 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Access-Control-Allow-Origin: * Access-Control-Allow-Methods: POST, GET, OPTIONS, DELETE, PUT Access-Control-Max-Age: 1000 Access-Control-Allow-Headers: x-requested-with, Content-Type, origin, authorization, accept, client-security-token, Accept-Encoding Accept-Ranges: bytes Via: 1.1 varnish, 1.1 varnish X-Cacheable: NO:Set-Cookie Date: Sat, 03 Jan 2026 00:22:36 GMT X-Served-By: cache-chi-klot8100044-CHI, cache-fra-eddf8230075-FRA X-Cache: MISS, MISS X-Cache-Hits: 0, 0 X-Timer: S1767399756.203379,VS0,VE295 Vary: Accept-Encoding Strict-Transport-Security: max-age=900 transfer-encoding: chunked
Open service 151.101.130.132:443 · shoproxymoxy.com
2025-12-22 20:25
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset=UTF-8 Server: Apache Cache-Control: no-cache, private Content-Security-Policy-Report-Only: default-src 'self'; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; img-src * data: blob: android-webview-video-poster:; font-src * data:; connect-src * blob:; media-src * blob:; frame-src * blob: navigate:; worker-src 'self' blob:; frame-ancestors *; form-action 'self' www.facebook.com tr.snapchat.com pos.commentsold.com; object-src 'none'; manifest-src *; child-src 'self' blob:; report-uri https://o43862.ingest.sentry.io/api/239693/security/?sentry_key=deb2fc6b7d104f7ea6241356c26c14d0 x-robots-tag: all X-Request-Id: 86970f0f-58a1-44e5-9507-6eaada7f5324 Set-Cookie: laravel_session=eyJpdiI6Ino2YjBHbXlod3NMd0pESTlaeFNSNkE9PSIsInZhbHVlIjoiVFhpdXJuTzhFaThWOUJSTmxLUXV6ZEgxWWZaU1NBRVlPaEhqS0NlYnA2VU9pMEtGS2lSNlB1UXM0TG9TREIwa214ODFsTXpVRjUvYmtKcmtiWVQwWTZ0NXhuQ1h6VEdBODMrR2U0REUyM21VZmJqVHh2S2NCQ20rTlRJSFRvNFUiLCJtYWMiOiI3YTVhMGYxYmJkOTdmZWM4ZTVhMmFhNjc2OTQ1YjE1ODdlMzU5YzFkNmY4N2ViMzE1YjNkZDMyNjkwMTI3NWMwIiwidGFnIjoiIn0%3D; expires=Fri, 20 Feb 2026 20:25:23 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Set-Cookie: kPTn5Rb7kCIoB9qmcHI8lOr0PW2em9uL8tKkdslf=eyJpdiI6ImdDeWZqTDdGak0zYXFrNERraU5LZUE9PSIsInZhbHVlIjoicEVWVkZFRjQ1aUYyMEtiMTh5MXUvR2VGTG9saGllaDFBUlBtZldraExYYnpoeG5UcHFVbHZtUUlMbU5pVXFGd0NMcWE4YWtvam1yOUd5dVB2amlSYkFIeDA0Wmw0YnMxQU8rZXZLdE9SNUdIQTdUTStFQ1ByWEhpekNsaFRvaGNjK0s0Z2d0MTlMSzFKZmErbW00aGF5cFU1bzkyMFFLMzYxdVVseDNreE51ckpvMTMrRmRvcVEvbWN4c0cvTWFxUC9BWjcvQmh2eklxV25CTEhNYmZ3WFIxNTdrM2xLbVc4TVlrVm1ldUtEbWZnMG5WbS9OT1lmb2JUM3AyVStjbGt3ZVRmTFc0ZjBWUTR2UUJGUncvc1Y3MkpMMU95Ykt1NnpOZFBJTzRHNlIzbU1EK05iUUhwUFVzVEEwd0NmK2FrYnBxR1dTRVY0SW9zVnRQcDJzS1ErMGlydjlQWGV4WVV2Sm0rNzEvWlM2MVZUMzlzMnV2VW1ncGExRkMxVDl6S0NsOGdFQnJST1BJSlYyQStNVWRnaDFFaUU4OFExY2ZwQ1FzaTM0MTdjKzNTWmdLRnJMeHNQdXJ5emxONXJ1R05vQ3dQekY2Z1ZFUHp6TzlTdDM0MFltOHhQZGIxOWJDblhRZjVXTGpTNnZXWmQrN0tFcE0zcWZyNzJBRXFTWUkiLCJtYWMiOiJlZDc4YzBjM2EzNDRkZTgzMGQ5ZmY4ZDVkYmRkMDQzZWYwNDU0NjAwNmYyNWM0YTVkZGE4NTlkZDkwMDFlNGE1IiwidGFnIjoiIn0%3D; expires=Fri, 20 Feb 2026 20:25:23 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Access-Control-Allow-Origin: * Access-Control-Allow-Methods: POST, GET, OPTIONS, DELETE, PUT Access-Control-Max-Age: 1000 Access-Control-Allow-Headers: x-requested-with, Content-Type, origin, authorization, accept, client-security-token, Accept-Encoding Accept-Ranges: bytes Via: 1.1 varnish, 1.1 varnish X-Cacheable: NO:Set-Cookie Date: Mon, 22 Dec 2025 20:25:23 GMT X-Served-By: cache-chi-kigq8000117-CHI, cache-rtm-ehrd2290050-RTM X-Cache: MISS, MISS X-Cache-Hits: 0, 0 X-Timer: S1766435124.561677,VS0,VE311 Vary: Accept-Encoding Strict-Transport-Security: max-age=900 transfer-encoding: chunked
Open service 151.101.130.132:443 · shoproxymoxy.com
2025-12-21 00:04
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset=UTF-8 Server: Apache Cache-Control: no-cache, private Content-Security-Policy-Report-Only: default-src 'self'; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; img-src * data: blob: android-webview-video-poster:; font-src * data:; connect-src * blob:; media-src * blob:; frame-src * blob: navigate:; worker-src 'self' blob:; frame-ancestors *; form-action 'self' www.facebook.com tr.snapchat.com pos.commentsold.com; object-src 'none'; manifest-src *; child-src 'self' blob:; report-uri https://o43862.ingest.sentry.io/api/239693/security/?sentry_key=deb2fc6b7d104f7ea6241356c26c14d0 x-robots-tag: all X-Request-Id: d10693c0-e1a6-4e9a-9121-653a7f67cbd4 Set-Cookie: laravel_session=eyJpdiI6IjlIcERPSVdtK3Y3VkRtRXpRaE5vOXc9PSIsInZhbHVlIjoicDdrMHJqS1YzN2huUUpaS2t4eG8xdTNPYmFObmZRRVpvTktqdEQ1alNaL1ZGMDhSNU5YV2tmbDlidUpubFY3Um9pMjV4V3JxdVVuTmJkK2pTdlIyRkx5VmU3dmJKWnAvNVFEMExNTEtWS0gxeENXMStVbm1FUjI2NThnbWF6VDUiLCJtYWMiOiI0ZTAxZGQzYjBmOTM5ZTdhZjlhNThlNWU0NDM0MDIyYjQ4OTk2ODk5YjRiZTU0OTAwN2VjMjk1YjgxZTFiNDliIiwidGFnIjoiIn0%3D; expires=Thu, 19 Feb 2026 00:04:15 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Set-Cookie: 62FEghilKyTW60wVmeYjrasHLHu0d4HDnBu6OSO0=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%3D; expires=Thu, 19 Feb 2026 00:04:15 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Access-Control-Allow-Origin: * Access-Control-Allow-Methods: POST, GET, OPTIONS, DELETE, PUT Access-Control-Max-Age: 1000 Access-Control-Allow-Headers: x-requested-with, Content-Type, origin, authorization, accept, client-security-token, Accept-Encoding Accept-Ranges: bytes Via: 1.1 varnish, 1.1 varnish X-Cacheable: NO:Set-Cookie Date: Sun, 21 Dec 2025 00:04:16 GMT X-Served-By: cache-chi-klot8100147-CHI, cache-yyz4527-YYZ X-Cache: MISS, MISS X-Cache-Hits: 0, 0 X-Timer: S1766275456.754096,VS0,VE252 Vary: Accept-Encoding Strict-Transport-Security: max-age=900 transfer-encoding: chunked
Open service 151.101.130.132:443 · shoproxymoxy.com
2025-12-19 00:12
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset=UTF-8 Server: Apache Cache-Control: no-cache, private Content-Security-Policy-Report-Only: default-src 'self'; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; img-src * data: blob: android-webview-video-poster:; font-src * data:; connect-src * blob:; media-src * blob:; frame-src * blob: navigate:; worker-src 'self' blob:; frame-ancestors *; form-action 'self' www.facebook.com tr.snapchat.com pos.commentsold.com; object-src 'none'; manifest-src *; child-src 'self' blob:; report-uri https://o43862.ingest.sentry.io/api/239693/security/?sentry_key=deb2fc6b7d104f7ea6241356c26c14d0 x-robots-tag: all X-Request-Id: a9537403-2ec3-46ea-9832-c3fea2dc102d Set-Cookie: laravel_session=eyJpdiI6Ikl2cnFHZU9oQzlPWVhBak84K1NWU1E9PSIsInZhbHVlIjoiMUdYZEFUdUM3Qk40bGFYMnQxK3J5d01XczZ0eE01MlpxbmdyK1RPd0hsSjA0YmJkN1NKT2FoSFNPVm9xaFY2ZVkxdkhOR0VkNlhVeXQ1V2U4TG5PZE5RVzlhS1k4S0xrOWR3Qzl5MjBiL3BuVEpQWWpuNkYxYVl5YlZveC9CanUiLCJtYWMiOiI4MGIyYzhiNGYwYWNmZWJjN2NkYWQwMWU4NmVhMDNhMjE5MjhkZWM0YjEzYWUyOGY2NTAzZWQ0ZjQwMWI2Y2MxIiwidGFnIjoiIn0%3D; expires=Tue, 17 Feb 2026 00:12:52 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Set-Cookie: s5B6MNP6buGOr5LnYg5HvBdSkcdZ1psXDOUghubO=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%3D; expires=Tue, 17 Feb 2026 00:12:52 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Access-Control-Allow-Origin: * Access-Control-Allow-Methods: POST, GET, OPTIONS, DELETE, PUT Access-Control-Max-Age: 1000 Access-Control-Allow-Headers: x-requested-with, Content-Type, origin, authorization, accept, client-security-token, Accept-Encoding Accept-Ranges: bytes Via: 1.1 varnish, 1.1 varnish X-Cacheable: NO:Set-Cookie Date: Fri, 19 Dec 2025 00:12:53 GMT X-Served-By: cache-chi-klot8100139-CHI, cache-pao-kpao1770021-PAO X-Cache: MISS, MISS X-Cache-Hits: 0, 0 X-Timer: S1766103173.684993,VS0,VE336 Vary: Accept-Encoding Strict-Transport-Security: max-age=900 transfer-encoding: chunked